Skip to main content
POST
Submit missing payment-compliance information
Used by the Stableyard-hosted page with its scoped HttpOnly cookie and configured origin. Send the csrfToken returned by exchange or read in X-Stableyard-CSRF. The strict request body contains a fields object mapping requested field keys to string values. Submit only fields returned by the active action; never log their values. The response returns the resulting action and clears the browser cookie. Responses use Cache-Control: no-store, private. Invalid fields return 400, an invalid origin or CSRF proof returns 403, and an expired or inactive session returns 410. Completion prepares the account for a retried Payment. It does not execute or revive a financial transaction. Reconcile the original Payment before retrying its intended operation.

Authorizations

__Host-stableyard_partner_kyc
string
cookie
required

Scoped HttpOnly cookie set by POST /v2/public/partner-kyc-actions/{code}/exchange. The browser sends it automatically from the configured hosted origin; non-secure local development uses stableyard_partner_kyc. It is not an app secret or bearer token.

Headers

x-stableyard-csrf
string
required
Pattern: ^[A-Za-z0-9_-]{43}$

Body

application/json
fields
object
required

Field keys must exactly match the keys returned in nextAction.fields.

Response

Completed hosted action

action
object
required